Splunk Search

Splunk Search
Community Activity
drussell88
I am searching an index for 22 different literals. Each one of the events could have 2 or three contained in each ev...
by drussell88 Explorer in Splunk Search 01-15-2013
0 4
0
4
Splunk_U
I have two search string: index=os source=Perfmon:LocalMainMemory | where like(counter,"% Committed Bytes In Use") |...
by Splunk_U Path Finder in Splunk Search 01-15-2013
1 6
1
6
meamitjain
Hello, I have timechart by location requirement. Also client want to see the cumulative value on the stacked bar so t...
by meamitjain New Member in Splunk Search 01-15-2013
0 3
0
3
bcarr12
I am currently trying to correlate a field being extracted for user badge to a lookup table I created that include ad...
by bcarr12 Path Finder in Splunk Search 01-15-2013
1 1
1
1
tamnor
Hi I am a new Splunk user and at the moment I am using it to monitor the performance of the web applications of the ...
by tamnor Explorer in Splunk Search 01-15-2013
1 4
1
4
marquiselee
I need to extract filenames so I can transact across many logs of different types and such. some logs have full url...
by marquiselee Path Finder in Splunk Search 01-15-2013
0 12
0
12
syusjk6
Hi, I'm not sure that I'm asking this kind of question here. However, here goes my scenario: I created Splunk dashbo...
by syusjk6 Engager in Splunk Search 01-15-2013
0 6
0
6
dlovett
Scratching my head on this one. I'm relatively new to Splunk and the DBConnect app. I have successfully created sev...
by dlovett Path Finder in Splunk Search 01-15-2013
0 2
0
2
hvandenb
Are there some good examples on the format of the SQL for tails that are custom and have a where clause?
by hvandenb Path Finder in Splunk Search 01-15-2013
0 1
0
1
iKate
Hello, we've faced with a problem of results trunkating while using join command. In fact limitations of max results ...
by iKate Builder in Splunk Search 01-15-2013
0 5
0
5
pgadge
Hi Guys, I am very new to splunk and operating on thew following data. I want to retrieve SQL queries which take mor...
by pgadge New Member in Splunk Search 01-15-2013
0 1
0
1
jcisha
Splunk Search results generated using Table Using DBX to enter the value of the result field (SQL input) Parameter ...
by jcisha Path Finder in Splunk Search 01-14-2013
0 1
0
1
disha
In my search I need functionality like My search...| if eventid=1 then "table a,b,c",if eventid=2 then "table c,d",i...
by disha Contributor in Splunk Search 01-14-2013
0 3
0
3
samsplunkd
My dataset is like below: 01/05/2013 23:58:00 -0800, search_name=foo, search_now=1357459200.000, info_min_time=135...
by samsplunkd Path Finder in Splunk Search 01-14-2013
1 9
1
9
casspugh
Hello, I have searched around, but I haven't found an example that has shown me the way. What I am trying to do is...
by casspugh Explorer in Splunk Search 01-14-2013
0 3
0
3
bcarr12
I am trying to create a table that shows what time two particular events occur daily (one term signifies start, anoth...
by bcarr12 Path Finder in Splunk Search 01-14-2013
0 4
0
4
Splunk_U
When executing the search "index=os source=df" it is gvng me the data for /dev/ammper/system-root and /dev/sda...is t...
by Splunk_U Path Finder in Splunk Search 01-14-2013
0 5
0
5
javo
Hello there What I'm doing is extracting fields from my log file and every entry has about 20 fields separated by co...
by javo Explorer in Splunk Search 01-14-2013
0 7
0
7
abhayneilam
Hi, I have two files and I want to co-relate based on the "Time Field". Problem is that "Time Field" is not having t...
by abhayneilam Contributor in Splunk Search 01-14-2013
0 2
0
2
omend
Hi all, I would like to create a unique chart displaying the working hours of a specific worker. The x axis should ...
by omend Path Finder in Splunk Search 01-13-2013
0 4
0
4
Splunk_U
Is there any thing wrong with the below search string????? index=os source=df |multikv fields Filesystem Avail UsePc...
by Splunk_U Path Finder in Splunk Search 01-11-2013
0 6
0
6
Splunk_U
I have a search string index=os source=vmstat | multikv fields memUsedPct memTotalMB memFreeMB | stats avg(memUsedP...
by Splunk_U Path Finder in Splunk Search 01-11-2013
0 1
0
1
lain179
I have a view with a flash column bar chart made out of a saved search. I would like to draw a horizontal threshold l...
by lain179 Communicator in Splunk Search 01-11-2013
0 1
0
1
vistasyslog
I cannot get the hostnames in place of IP's on the summary screen. I need to get it done through the .csv file option...
by vistasyslog New Member in Splunk Search 01-11-2013
0 4
0
4
kederart
I am trying to match two separate strings for one field extraction. When setup separately they would look like... (?...
by kederart Explorer in Splunk Search 01-11-2013
0 7
0
7
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...